Hacking possible new exploit ?

thmailla

Member
OP
Newcomer
Joined
Mar 31, 2009
Messages
22
Trophies
0
XP
70
Country
France
Hello,

My WII is in 3.1E firmware with CIOS rev 9 by Waninkoko the GREAT.
All apps made by him working good.
I've USB Loader 1.1, Baclup Launcher Gamma 0.3, Softchip Loader R89, GC backup Launcher 0.2, Homebrew Channel 1.01 Wad Installer 1.3 etc etc... and I'm happy.
I've got a MODCHIP YAOSM 3.2

But NINTENDO with update 4.0 blocked Twillight hack.

Also is it possible to find exploit in :

1 - Wiiware Games ?
2 - Gamecube Games ?
3 - VC games ?
4 - Official NINTENDO Backup disc 1.31 ?
5 - Wii System Menu update disc ? (semi-brick rescue disc)
6 - Menu System 4.0 with SDCARD Access ?
[Edit] 7 - Maintenance Mode ?
8 - Wiibrickblocker process ? (is it possible to use the patch mode of it to launch update or downgrade ?)

I know my question are basically but Waninkoko, Marcan, Wiigator and others could explain us the reasons of possibility or not.

PS : My English isn't very good sorry

Thanks
 

pika9323

Well-Known Member
Member
Joined
Nov 23, 2008
Messages
409
Trophies
0
XP
102
Country
Gambia, The
I would say:
All is possible.

to:
Official NINTENDO Backup disc 1.31 -> no IOS16 is patched and if you change the disc->Trucha signed and this doesnt work
Gamecube Games ->No. The Wii goes Into GC mode and doesnt have full access over the wii
Wii System Menu update disc -> wtf?
 

gitkua

Well-Known Member
Member
Joined
Jul 27, 2006
Messages
261
Trophies
0
Age
36
Website
Visit site
XP
324
Country
Netherlands
yes that's possible
smile.gif
weird question
 

spiritofcat

Well-Known Member
Member
Joined
Dec 20, 2007
Messages
577
Trophies
0
XP
202
Country
What exactly does that video show?
There's a guy with 4.0 and the homebrew channel installed.
He shows us a channel that has the zelda VC banner, and launches the hbc installed splash screen.
That could easily be just a dol forwarder channel with the Zelda VC banner on it. There's no proof that it's the real Zelda VC channel, modified or otherwise.

And the guy says you need to have the modified channel already installed for this to work.
Seems entirely pointless to me.
 

wqu

Member
Newcomer
Joined
Nov 26, 2008
Messages
10
Trophies
0
XP
165
Country
United States
I think the video have nothing to do with new exploit. That guy in the video just wanted to play "modified" VC game from SD card, and I think it can be easily solved by simply patch IOS60.
 

FAST6191

Techromancer
Editorial Team
Joined
Nov 21, 2005
Messages
33,882
Trophies
2
Website
trastindustries.com
XP
22,623
Country
United Kingdom
Basic theory, if you have an exploit you want it to be hard to patch. The twilight hack blocking is but an end run around the hack (they check the save for the hack although they borked the check hard in the first few attempts, they do not fix the hack).
Know that whenever I mention signing it was pure luck that Nintendo messed up the implementation, without it we would probably be where the 360 is now save for GC homebrew and unless someone finds a method to factor large numbers, donates some seriously powerful computing capabilities or someone manages some social engineering type attacks we have little chance of breaking the signing.

1 - Wiiware Games ?
Entirely possible, they can however easily be updated and you have to pay for them (rental or hitting up a friend is easy enough for a disc).

2 - Gamecube Games ?
In crude terms the gamecube games run in a hypervisor mode using mios which keeps it fairly locked down, admittedly not all that much work has been done upon it but I doubt there is a good exploit in there. Also this was the basis for the tweezer attack (now fixed but as they said it only needed to be done once).
Not to mention we already have GC homebrew running and have done for longer that we have had modchips for.

3 - VC games ?
This one would be harder as VC games are usually just emulators and so we would need to find a bug in the emulation code rather than code built from the ground up. Although it is the same in theory as wiiware emulation tends to be simpler in terms of system interactions (emulator writing is hard and you tend not to play around with other stuff once it is done).

4 - Official NINTENDO Backup disc 1.31 ?
This is what gave us IOS16* although there may be more; I doubt it though as it is also a fairly simple app with very limited features.
*IOS16 was useful only because it still had the trucha bug, was signed by Nintendo and Nintendo had not updated it when they had updated all the other IOS versions (whether it was an oversight or a lack of desire to refit their fixing stations is another debate). This allowed us to install it via the "normal" wii methods (which check signing, at this point checking it properly) but now Nintendo has put a higher version out there with working signing it is only useful for those on a pre-4.0 wii.

5 - Wii System Menu update disc ? (semi-brick rescue disc)
This is not an official disc (I assume you speak of these: http://hackmii.com/2008/05/semi-brick-fix-discs/ ) and as such needs a homebrew capable wii (one with the signing/trucha bug).

6 - Menu System 4.0 with SDCARD Access ?
This is the most hopeful but in reality we have had similar capabilities from some of the earliest menus. Not to mention they are sure to have locked it down somewhat (SD is a widely known and understood spec and anyone can have full access to the inner depths of the SD card).

[Edit] 7 - Maintenance Mode ?
This would be the the 4 directions at once thing (or y with starfall), it has been explored a bit from what I have heard but again it is a simple mode designed to run a very limited selection of software (again signed).

8 - Wiibrickblocker process ? (is it possible to use the patch mode of it to launch update or downgrade ?)

Brick blocking comes in 2 forms,
1) header tweak (this is used by the various channels, brickblocker and mod chips to prevent updates.
2) ripping the update from the disc, naturally this breaks signing and is ultimately no different to the method above as far as this is concerned.

When the wii runs it checks for a given section in the header and if it exists it then checks version numbers, if higher it triggers the update procedure.
This disc header is not signed though and so we can dupe the wii into thinking there is no update, this is all it does. Before you ask the version numbers are included in the signed section of the update so we can not just change those, homebrew methods rely on several things but as we would only have the official Nintendo method to install by in the first place......
 

thmailla

Member
OP
Newcomer
Joined
Mar 31, 2009
Messages
22
Trophies
0
XP
70
Country
France
Thanks very much for informations.

I hope a new hack will come early to launch homebrew channel or another code for downgrade possibility.
My Wii is OK but lot of my friends have updated to 4.0 without HBC and no possibilities to benefit any hack.

rolleyes.gif
 
General chit-chat
Help Users
  • No one is chatting at the moment.
  • Xzi @ Xzi:
    about 120GB left on the internal SSD
    Gift
  • Xzi @ Xzi:
    and just installed a 512GB SSD with nothing on it yet
    Gift
  • kenenthk @ kenenthk:
    So in other words only 4 games got installed
    Gift
  • Xzi @ Xzi:
    lol
    Gift
  • Xzi @ Xzi:
    PS5 games are actually considerably smaller than PS4 games
    +1
    Gift
  • Xzi @ Xzi:
    better compression/optimization i guess
    Gift
  • kenenthk @ kenenthk:
    But it only has like 4 games :tpi:
    Gift
  • Julie_Pilgrim @ Julie_Pilgrim:
    what is something you can say about console homebrew but also in the bedroom
    Gift
  • kenenthk @ kenenthk:
    Time to transfer files
    Gift
  • Julie_Pilgrim @ Julie_Pilgrim:
    "it was so hard the first time"
    +1
    Gift
  • Julie_Pilgrim @ Julie_Pilgrim:
    "Time to transfer files" bro having sex with robots
    +1
    Gift
  • Julie_Pilgrim @ Julie_Pilgrim:
    honestly knowing ken that isn't that unbelievable
    +1
    Gift
  • Xzi @ Xzi:
    arent many ps5 exclusives it's true, but there are a whole lot of ps4 games that got ps5 upgrades
    Gift
  • Xzi @ Xzi:
    and those have to be stored on one of the SSDs
    Gift
  • Xzi @ Xzi:
    "time to smash the stack"
    Gift
  • kenenthk @ kenenthk:
    Uremum does like to call me dadbot
    Gift
  • kenenthk @ kenenthk:
    Nothing beats a midnight shower
    Gift
  • AkiraKurusu @ AkiraKurusu:
    I'd say there would be more PS5 exclusives...if people could actually buy PS5s.
    Gift
  • Gift
  • AkiraKurusu @ AkiraKurusu:
    I mean, if no-one can buy a PS5, and thus is stuck with PS4 (Pros), then companies would still see some profit from developing PS4 games with PS5 upgrades; meanwhile, if they developed a PS5 game, then everyone who can't get that console won't buy that game, especially at launch.
    Gift
  • kenenthk @ kenenthk:
    Nah every console starts early with low libraries
    Gift
  • Xzi @ Xzi:
    well theyre churning them out as fast as they possibly can, not like Xbox or PC are faring much better with the chip shortages
    Gift
  • Xzi @ Xzi:
    and games still take 4-6 years to develop regardless, so its not like sony can conjure up new exclusives out of thin air
    Gift
  • kenenthk @ kenenthk:
    Makes me wonder what they have now and are actually hiding from the public
    Gift
  • kenenthk @ kenenthk:
    I hope in the next 5 years they can move on to even more realistic skin renders and not just make characters look like Shiney clay molds
    Gift
    kenenthk @ kenenthk: I hope in the next 5 years they can move on to even more realistic skin renders and not just...